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(54) Abstract Title 

Data transponder with plural memory areas for use with different types of interrogator 

(57) A transponder 3 is operable to communicate with a plurality of different types of interrogator managed 
by a number of providers. The transponder comprises a plurality of storage areas 17-1 to 17-n for storing data 
used when the transponder communicates individually with the interrogators. A plurality of key signals ID1 
-IDN unique to the transponder are stored for each of the storage areas for permitting use of only a particular 
storage area corresponding to an interrogator with which the transponder is communicating. When 
communicating with an interrogator, the transponder receives a key signal and compares it with the stored 
keys to permit access to a storage area. The transponder has a stored ID number ID0 for permitting itself to be 
identified as well as the additional key signals identifying the memory areas. 
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DATA COMMUNICATION TRANSPONDER AND 
COMMUNICATIONS SYSTEM EMPLOYING IT 

BACKGROUND OF THE INVENTION 

5 Field of the Invention 

The present invention relates to a data communication transponder, such as 
a radio-wave tag or IC card, and a communications system employing such a 
transponder, and in particular to a data communication transponder having a 
plurality of data storage areas for use in communicating with interrogators of a 
10 plurality of providers and a communications system employing such a transponder. 

Description of the Prior Art 

Nowadays, communications systems are known that permit a single IC card, 
used as a transponder, to communicate with a plurality of types of reader/writer 

15 (interrogator) managed individually by a number of providers. To realize such a 
communications system, an IC card employed therein has memory divided into a 
plurality of memory areas allocated individually to a number of providers in order 
to achieve separate storage of data in communicating with the reader/writers 
managed individually by those providers. In this system, where a single IC card 

20 can communicate with reader/writers managed individually by a number of 
providers, it is essential, during communication, to permit the use of only a 
particular memory area allocated to the provider that manages the reader/writer 
with which a given IC card is currently communicating and simultaneously 
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prohibit the use of the other memory areas. 

To achieve this, each IC card has a plurality of cipher keys stored therein 
that permit the individual memory areas to be used only when communicating 
with the reader/writers managed by the corresponding providers to which those 
5 memory areas are allocated. An IC card and a reader/writer authenticate each 
other by the use of such a cipher key. A non-contact communications system 
involving such a mutual authentication process is proposed in Japanese Laid-Open 
Patent Application No. H10-327142. 
; In the communications system proposed in Japanese Laid-Open Patent 

10 Application No. H10-327142 mentioned above, as shown in Fig. 11, the cipher keys 
that are used to permit the use of the individual memory areas secured within an 
IC card are determined provider by provider. Moreover, once a particular 
provider is authenticated by the use of the corresponding cipher key, the IC card 
can recognize, on the basis of the same cipher key, which memory area the 

15 provider will request access to. On the other hand, a reader/writer can check 
whether a given IC card is authentic or not, but cannot identify it {i.e. cannot 
distinguish one IC card from another). Therefore, to permit reader/writers to 
identify IC cards, each IC card has also an ID (identification) number unique 
thereto stored therein. 

20 However, in this system, the cipher keys that are used to permit the use of 

the memory areas secured within an IC card are determined provider by provider 
as described above, and thus those cipher keys are not unique to : the IC card. 
Moreover, the ID number stored in an IC card is issued when the IC card is 



manufactured, and therefore the ID number, at, the same time as it is stored in the 
IC card, needs to be registered also in individual providers. Thus, every time an 
IC card is manufactured, its ID number needs to be registered in individual 
providers. This complicates the management of the communications system. 

5 

SUMMARY OF THE INVENTION 
An object of the present invention is to provide a data communication 
transponder and a communications system employing such a transponder that 
offer higher security by permitting cipher keys, used to permit the use of memory 
ID areas secured within an IC card, to be so determined as to be unique to the IC card. 

To achieve the above object, according to one aspect of the present 
invention, a transponder for data communication is provided with: a plurality of 
storage areas for storing data used when the transponder communicates 
individually with a plurality of interrogators managed by different parties; a 
15 plurality of key signals, unique to the transponder and stored one for each of the 
storage areas, for permitting the use of only a particular storage area corresponding 
to the interrogator with which the transponder is currently communicating. Here, 
the transponder, when communicating with an interrogator, checks the key signal 
received from the interrogator against the key signals stored in the transponder and, 
20 when the received key signal coincides with one of the stored key signals, the 
transponder is permitted to communicate with the interrogator by using only a 
particular storage area corresponding to that interrogator. 

In this transponder for data communication, the providers that manage the 



interrogators that can communicate with the transponder determine the cipher 
keys, which are used when the transponder communicates with the interrogators, 
in such a way that those cipher keys are unique to the transponder. When the 
transponder, having the cipher keys determined in this way, attempts to 
5 communicate with one of the interrogators, the interrogator can identify the 
transponder. 

According to another aspect of the present invention, a non-contact 
communications system is provided with: a plurality of interrogators that are 
managed by different parties; and a transponder for data communication having a 

10 plurality of storage areas for storing data used when the transponder communicates 
individually with the interrogators and a plurality of key signals, unique to the 
transponder and stored one for each of the storage areas, for permitting the use of 
only a particular storage area corresponding to the interrogator with which the 
transponder is ^currently communicating. Here, the transponder, when 

15 communicating with an interrogator on a non-contact basis, checks the key signal 
received from the interrogator against the key signals stored in the transponder and, 
when the received key signal coincides with one of the stored key signals, the 
transponder is permitted to communicate with the interrogator by using only a 
particular storage area corresponding to that interrogator. 

20 In this communications system, the providers that manage the interrogators 

that can communicate with the transponder determine the cipher keys, which are 
used when the transponder communicates with the interrogators, in such a way 
that those cipher keys are unique to the transponder. When the transponder, 
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having the cipher keys determined in this way. attempts to communicate 
of the interrogators, the interrogator can identify the transponder. 



BRIEF DESCRIPTION OF THE DRAWINGS 
5 This and other objects and features of the present invention will become 

clear from the following description, taken in conjunction with the preferred 
embodiments with reference to the accompanying drawings in which: 

Fig. 1 is a block diagram showing the configuration of the communications 
system of a first embodiment of the invention; 
10 Fig. 2 is a time chart showing the operation of the communications system 

shown in Fig. 1; 

Figs. 3A and 3B are block diagrams showing the relationship between the 
providers that manage the reader/writers and the memory areas secured within the 
IC card employed in the communications system shown in Fig. 1; 
15 Figs. 4A and 4B are block diagrams showing the relationship between 

different IC cards employed in the communications system shown in Fig. 1; 

Fig. 5 is a block diagram showing the internal configuration of the controller 
and the memory employed in the communications system shown in Fig. 1; 

Fig. 6 is a block diagram showing the configuration of the communications 
20 system of a second embodiment of the invention; 

Fig. 7 is a time chart showing the operation of the communications system 

shown in Fig. 6; 

Figs. 8A and 8B are block diagrams showing the relationship between 



different IC cards employed in the communications system shown in Fig. 6; 

Fig. 9 is a block diagram showing the internal configuration of the controller 
and the memory employed in the communications system shown in Fig. 6; 

Fig. 10 is a block diagram showing the configuration of the communications 
5 system of a third embodiment of the invention; and 

Fig. 11 is a block diagram showing the configuration of a conventional 
communications system. 

, DESCRIPTION OF THE PREFERRED EMBODIMENTS 

10 First, a first embodiment of the present invention will be described with 

reference to the drawings relevant thereto. Fig. 1 is a block diagram showing the 
configuration of the communications system of the first embodiment of the 
invention. Fig. 2 is a time chart showing the operation of the communications 
system of this embodiment. It is to be noted that, throughout the present 

15 specification, the symbol "NG M indicates that an authentication process has found 
a communication partner to be not authentic, and that the symbol "OK" indicates 
that an authentication process has found a communication partner to be authentic. 

The communications system shown in Fig. 1 has a reader/writer 1 and a 
controller 2 that together function as an interrogator and an IC card 3 that 

20 functions as a transponder. In this communications system, the reader/writer 1 is 
composed of a timing circuit 4 that exchanges signals with the IC card 3, a 
modulation/demodulation circuit 5 that demodulates a response signal received by 
the tuning circuit 4 and that modulates a command signal produced by a control 



r-»» i^rw^pi-v -/ICS 



circuit 6, a control circuit 6 that produces a command signal, an authentication 
circuit 7 that receives from the control circuit 6 an authentication signal added to 
the received response signal and that authenticates the IC card 3 on the basis of the 
authentication signal, and a calculation circuit 8 that receives from the control 
5 circuit 6 the authentication signal added to the received response signal and that 
performs a predetermined calculation operation fl( ) on the authentication signal. 
This reader/writer 1 is controlled by the controller 2 that communicates therewith. 
The controller 2 has a main control circuit 9 that exchanges signals with the 
control circuit 6 of the reader/writer 1 and that controls the reader/writer 1, and a 
10 memory 10 for storing the ID number of and the information related to the owner 
of the IC card 3. 

On the other hand, the IC card 3 is composed of a tuning circuit 11 that 
exchanges signals with the reader/writer 1. a rectifier circuit 12 that produces a 
source voltage to be supplied to the individual blocks of the IC card 3 by rectifying 
15 the signal tuned in by the tuning circuit 11, a modulation/demodulation circuit 13 
that demodulates a command signal received by the tuning circuit 11 and that 
modulates a response signal produced by a control circuit 14. a control circuit 14 
that produces a response signal, an authentication circuit 15 that receives from the 
control circuit 14 an authentication signal added to the received command signal 
20 and that authenticates the reader/writer 1 on the basis of the authentication signal, 
a calculation circuit 16 that receives from the control circuit 14 the authentication 
signal added to the received command signal and that performs a predetermined 
calculation operation f2( ) on the authentication signal, and a memory 17 for 



-7- 



Qwcnnrin- *-nn 



storing the ID number of and the information related to the owner of the IC card 3. 

This IC card 3 can communicate with a plurality of reader/writers that are 
managed individually by different providers. To achieve this, the IC card 3 has its 
memory 17 divided into memory areas 17-1 to 17-n that are allocated for access 
5 from the individual providers. Specifically, as shown in Fig. 3A, when the 
reader/writer la managed by a provider Al is permitted to communicate with the 
IC card 3, data communication is achieved by reading data from and writing data 
to one memory area 17-1 secured within the IC card 3, and, as shown in Fig. 3B, 
when the reader/writer lb managed by a provider A2 is permitted to communicate 

10 with the IC card 3, data communication is achieved by reading data from and 
writing data to another memory area 17-2 secured within the IC card 3. 

Also stored in the memory 17 Eire ID numbers (hereinafter the "memory 
IDs") IDl to IDn that are used to permit access to the memory areas 17-1 to 17-n 
and another ID number (hereinafter the "user ID") IDO that is used to permit each 

15 IC card 3 to be identified by the providers. Of these ID numbers IDO to IDn, 
which are all determined so as to be unique to each IC card 3, the user ID IDO is 
determined by the manufacturer when the IC card 3 is manufactured, and the 
memory IDs IDl to IDn are determined by the individual providers. Specifically, 
if, as shown in Fig. 4A, the ID numbers that are stored in the memory 17a of one IC 

20 card 3a are IDOa and IDla to IDna, then, as shown in Fig. 4B, the ID numbers that 
are stored in the memory 17b of another IC card 3b are IDOb and IDlb to EDnb, i.e. 
different values from IDOa and IDla to IDna. 

Moreover, if it is assumed that the provider A, when communicating with 
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to IC card 3a. uses to memory area 17a-l and, when communicating with the IC 
card 3b. uses to memory area 17b-!. ton, as shown in Fig. 5. in the memory 10 of 
to controller 2 managed by to provider A, to user ID IDOa of the IC card 3a. to 
memory ID IDla of to memory area 17*1. and to user information of the IC card 
5 3 a are stored as one set of mutually related data, and to user ID IDOb of to IC 
card 3b. to memory ID IDlb of to memory area 17b-l. and to user information 
of to IC card 3b are stored as another set of mutually related data. 

in this communications system, as shown in Fig. 2, at predetermined 
intervals, to reader/writer 1 produces a command signal Ca that has an 
10 authentication signal (rolling code, Rca added thereto by to control circuit 6 so as 
to enable to IC card 3 to perform an authentication process (STEP 1). The thus 
produced command signal Ca is ton modulated by to modulation/demodulation 
circuit 5, and is ton transmitted from to tuning circuit 4 to the IC card 3 (STEP 2). 
Here, to authentication signal Rca that is added to to command signal Ca is an 
15 arbitrary signal that has not yet been subjected to to calculation operation fl( ) by 

the calculation circuit 8. 

Whan the IC card 3 receives this command signal Ca through its tuning 
circuit 11, the rectifier circuit 12 produces a source voltage therefrom, and to 
modulation/demodulation circuit 13 demodulates and feeds it to to control circuit 
20 14. The control circuit 14, on detecting the authentication signal Rca added to to 
command signal Ca, feeds to authentication signal Rca to to authentication 
circuit 15 to check whether or not this authentication signal Rca has already been 
subjected to to calculation operation fl( ) within to reader/writer 1 (STEP 3). 
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Here, since this authentication signal Rca has not yet been subjected to the 
calculation operation fl( ), the authentication process results in "NG", and thus the 
IC card 3 does not authenticate the reader/writer 1 (STEP 4). 

At the same time, the authentication signal Rca detected by the control 
5 circuit 14 is fed to the calculation circuit 16 so as to be subjected to the calculation 
operation f2( ) (STEP 5). The signal f2(Rca) resulting from the calculation 
operation f2( ) performed by the calculation circuit 16 is, as an authentication 
signal Rcb, fed to the control circuit 14 so as to be added to a response signal Ra 
. that will be transmitted to the reader/writer 1. Moreover, the control circuit 14 
10 adds to this response signal Ra the data of the user ID EDO stored in the memory 17 
(STEP 6). The response signal Ra thus produced is modulated by the 
modulation/demodulation circuit 13, and is then transmitted from the tuning 
circuit 11 to the reader/writer 1 (STEP 7). 

When the reader/writer 1 receives this response signal Ra through its tuning 
15 circuit 4, the modulation/demodulation circuit 5 demodulates and feeds it to the 
control circuit 6. The control circuit 6 detects the authentication signal Rcb and 
the user ID IDO added to the response signal Ra (STEP 8), and then feeds the 
authentication signal Rcb to the authentication circuit 7 to check whether or not 
this authentication signal Rcb has already been subjected to the calculation 
20 operation f2( ) within the IC card 3. Here, since the authentication signal Rcb = 
f2(Rca) has already been subjected to the calculation operation f2( ), the 
reader/writer 1 authenticates the IC card 3 (STEP 9). 

Here, the authentication signal Rcb detected by the control circuit 6 is fed to 
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the calculation circuit • so as to be subjected to the calculation operation fl( ). 
The signal obtained by subjecting the authentication signal Rcb to the calculation 
operation fl< ) is. as an authentication signal Rcc, fed to the control circuit 6 (STEP 
10). However, if the authentication process in STEP 9 results in "NG", the 
5 reader/writer 1 does not communicate with the controller 2; if this authentication 
process results in "OK", the user ID IDO detected by the control circuit 6 is fed to 
the main control circuit 9 of the controller 2 (STEP 11). and the memory ID ID1 
that is stored in the memory 10 so as to correspond to that user ID IDO and that 
will be used to permit the use of the memory area 17-1 of the IC card 3 is read 
10 (STEP 12). Then, the controller 2 feeds the memory ID ID1 read from the memory 
10 from its main control circuit 9 to tire contiol circuit 6 of the reader/writer 1 
(STEP 13). 

Here, if the authentication process performed by the authentication circuit 7 
results in "OK", the control circuit 6 feeds the modulation/demodulation circuit 5 
15 with a command signal Cb to which the memory ID ID1. the authentication signal 
Rcc. and a signal requesting the use of the memory area 17-1 are added; if the 
authentication process performed by the authentication circuit 7 results in "NG", 
or if no user ID TDO is stored in the memory 10, the control circuit 6 feeds the 
modulation/demodulation circuit 5 with a command signal CM to which the 
20 authentication signal Rcc is added (STEP 14). The command signal Cb or CM 
thus produced by the control circuit 6 is then fed to the modulation/demoduUtion 
circuit 5, and is then transmitted from the tuning circuit 4 (STEP 15). 

When the IC card 3 receives the command signal Cb through its tuning 
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circuit 11, the rectifier circuit 12 produces a source voltage therefrom, and the 
modulation/demodulation circuit 13 demodulates and feeds it to the control circuit 
14. The control circuit 14 detects the authentication signal Rcc and the memory 
ID DDI added to the command signal Cb, and recognizes that the reader/writer 1 
5 will use the memory area 17-1 (STEP 16). Then, the authentication signal Rcc is 
fed to the authentication circuit 15 to check whether or not this authentication 
signal Rcc has already been subjected to the calculation operation fl( ) within the 
reader/writer 1. It is to be noted that, although not shown in the time chart of Fig. 
2, when the IC card 3 receives the command signal Cbl, the reader/writer 1, the 
10 controller 2, and the IC card 3 repeat the operations starting with STEP 3. Here, 
since it is assumed that the IC card 3 has received the command signal Cb, the 
authentication circuit 15 checks whether the reader/writer l is authentic or not on 
the basis of the authentication signal Rcc (STEP 17). 

Here, if the authentication process results in "OK", the control circuit 14 
15 compares the memory ID received from the reader/writer 1 with the memory ID 
stored in the memory area 17-1 within the memory 17 to check whether they 
coincide or not (STEP 18). The operation flow then proceeds, if the two memory 
IDs coincide, to STEP 20 and, otherwise, to STEP 19. On the other hand, if the 
authentication process in STEP 17 results in "NG M , or if the two memory IDs do not 
20 coincide in STEP 18, the authentication signal Rcc detected by the control circuit 
14 is fed to the calculation circuit 16 so as to subject it to the calculation operation 
f2( ). The signal f2(Rcc) obtained by subjecting the authentication signal Rcc to 
the calculation operation f2( ) is, as an authentication signal Red, fed to the control 
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circuit 14 (STEP 19), and then the operation flow proceeds to STEP 20. 

When the operation flow, on completion of the operation in STEP 18 or 19, 
proceeds to STEP 20. the control circuit 14 produce, if the authentication process 
resul ,s in "OK", a response signal Rb for notifying the reader/writer 1 that 
5 communication is possible or, if the authentication process results in "NG", a 
response signal Rbl to which the authentication signal Red and the user ID IDO are 
added, and feeds the produced signal to the modulation/demodulation circuit 13. 
Here, since .he authentication signal Rcc - flCRcb), and the memory ID received 
from toe reader/writer 1 is ID1 and thus coincides with the memory ID of the 
10 memory area 17-!. the response signa! Rb for notifying the reader/writer 1 that 
communication is possible is produced in STEP 20. When the response signal Rb 
or Rbl is fed to the modulation/demodulation circuit 13, it is modu.a«ed thereby 
and is then transmitted from the tuning circuit 11 (STEP 21). 

When the reader/writer 1 receives the response signal Rb through its tuning 
a5 circuit 4. the modulation/demodulation circuit 5 demodulates and feeds it to the 
control circuit 6. In response to me response signa. Rb, tire control circuit 6 
permits access to tie memory area 17-1 within the IC card 3, and recognizes that 
communication is now possible (STEP 22). It is to be noted that, although not 
sh own in tire time chart of Fig. 2. when tire reader/writer 1 receives tire response 
» signal Rbl. the reader/writer 1. the controller 2, and the IC card 3 repeat tire 

operations starting with STEP 8. 

Here, it is assumed that tie reader/writer 1 has received the response signal 
Rb , and therefore the control circuit 6 then makes the main contro! circuit 9 of the 
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controller 2 recognize that communication is now possible with the IC card 3 
(STEP 23). On recognizing that communication is possible with the IC card 3, the 
controller 2 communicates with the IC card 3 through the reader/writer 1, and, 
meanwhile, data is read from or written to the memory area 17-1 of the IC card 3 
5 (STEP 24). 

Next, a second embodiment of the present invention will be described with 
reference to the drawings relevant thereto. Fig. 6 is a block diagram showing the 
configuration of the communications system of this embodiment. Fig. 7 is a time 
chart showing the operation of the communications system of this embodiment 

10 In the communications system of this embodiment, the reader/writer and the 
controller shown in Fig. 6 have the same internal configuration as the reader/writer 
1 and the controller 2 in the communications system shown in Fig. 1. Moreover, 
in the block constituting the IC card in Fig. 6, such elements as are found also in 
the IC card 3 in the communications system shown in Fig. 1 are identified with the 

15 same reference numerals and symbols, and their detailed descriptions will not be 
repeated. 

The IC card 31 shown in Fig. 6 has a memory 18 divided into memory areas 
18-1 to 18-n, a tuning circuit 11, a rectifier circuit 12, a modulation/demodulation 
circuit 13, a control circuit 14, an authentication circuit 15, and a calculation 
20 circuit 16. This IC card 31, like the IC card 3 in the first embodiment, can 
communicate with a plurality of reader/writers managed by different providers, 
and thus has its memory 18 divided into memory areas 18-1 to 18-n that are 
allocated for access from the individual providers. 
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in the memory areas »l «o 18-n are stored ID numbers (hereinafter the 
-user IDs") mi. to ]Dna mat are used to permit each ID card 3 to be identified by 
me individual providers and ID numbers (hereinafter the "memory IDs", IDA to 
ro „b that axe used to permit access to the memory areas 18-1 to 18-r,. Thus, the 
5 user IDS IDla to IDna and the memory IDs IDlb to IDnb are stored in the memory 
18. The user IDs IDla to IDna and the memory IDs IDlb to IDnb are determined 
so as to be unique to each 1C card 31 by the individual providers after the 

manufacture of the IC card 31. 

Moreover, if it is assumed mat. as shown in Figs. 8A and 8B. a provider B, 
10 when communicating with an IC card 31a, uses the memory area 18a-l within the 
memory 18a and, when communicating with an IC card 31b, uses the memory area 
Mb-l within the memory 18b. men. as shown in Fig. 9. in the memory 10 of the 
controHer 2, the user ID IDla-a and the memory ID IDlb-a of the ,C card 31a are 
stored as one set of mutually reUted data, and the user ID IDla-b and the memory 
« ID BDlb-b of the IC card 31b are stored as another set of mutually related data. 

The operation of mis communications system will be described below with 
reference to Kg. 7. It is to be noted that, in the Mlowing descriptions, such 
operations as are found also in Fig. 2 are indicated as such, and their detailed 
descriptions will not be repeated. First, in STEPS u and 2a. the reader/writer 1 
20 Performs the same operations as in STEPS 1 and , shown in Fig. 2 to transmit a 
command signal CI having an authentication signal Rcl added thereto to the IC 
card 31. Here, the command signal CI has also a signal requesting access to the 
memory area 18-1 added thereto. 
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When the IC card 31 receives this command signal Cl through its tuning 
circuit 11, then, in STEP 3a, the control circuit 14 recognizes that the reader/writer 
1 is requesting access to the memory area 18-1 and also, as in STEP 3 in Fig. 2, 
detects the authentication signal Rcl and feeds it to the authentication circuit 15. 
5 Then, in STEPs 4a and 5a, the same operations as in STEPs 4 and 5 in Fig. 2 are 
performed. 

Then, the control circuit 14 adds to a response signal Rl the authentication 
signal Rc2 = f2(Rcl) produced by the calculation circuit 16 on the basis of the 
authentication signal Rcl, and adds thereto also the user ID IDla of the memory 

10 area 18-1 read from the memory 18 (STEP 6a). The response signal Rl thus 
produced is modulated by the modulation/demodulation circuit 13 and is then 
transmitted from the tuning circuit 11 to the reader/writer 1 (STEP 7a). 

When the reader/writer 1 receives this response signal Rl through its tuning 
circuit 4, then, in STEPs 8a to 14a, the same operations as in STEPs 8 to 14 in Fig. 

15 2 are performed. Specifically, the control circuit 6 detects the user ID IDla and 
the authentication signal Rc2 added to the response signal Rl, and then the 
authentication circuit 7 performs an authentication process on the basis of the 
authentication signal Rc2. Here, if the authentication process results in "NG", the 
reader/writer 1 does not communicate with the controller 2; instead, the operation 

20 flow proceeds to STEP 10a, so that an authentication signal Rc3 = fl(Rc2) is 
produced by the calculation circuit 8, and then a command signal C2a is produced 
to which the authentication signal Rc3 is added. On the other hand, if the 
authentication process results in "OK", the operation flow proceeds to STEP 11a, so 
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the confer 2 reads, within the memory 10, the memory ID IDlb that 
corresponds to the user ID IDla and feeds it to the reader/writer 1. and then a 
command signal C2 is produced to which the authentication signal Rc3 produced 
by me calculation circuit 8 and the memory ID IDlb are added. When there is no 
, user ID IDla in me memory 10. the control circuit 6 produces the command signal 

C2a mentioned above. 

When the command signal C2 or C2a is produced in mis way. this command 
signal is transmitted to the IC card 31 (STEP «* He re . since Ore authentication 
signal Rc2 - fiQ*1) has already been subjected to the calculation operation f2( ). 
: M the reader/writer 1 authenticates the IC card 31. Thus, the command signal C2 is 

transmitted to the IC card 31. 

The operations performed in STEP 16a and the following steps axe almost 
«he same as those performed in STEP 16 and the following step, in Fig. 2 except 

Therefore the descriptions of those steps will be 
that different symbols are used. Tneretore, me a F 

15 given below in simplified form. 

When the IC card 31 receives the command signal C2. me control circuit 14 
detects the authentication signal Rc3 and the memory ID IDlh added to the 
command signal C2 (STEP 16a,. It is to be noted ma, i, the IC card 31 receives 
*. command signal C2a here, just as in the first embodiment the reader/writer 1. 
2 „ the controller 2. and the IC card 31 repeat the operations starting with STEP 3a. 
Then, the authentication circuit 15 checks whether or not the authentication signal 
RC3 has already been subjected to the calcuiation operation fl( ) within the 
reader/writer 1 to check whether the reader/writer 1 is authentic or not (STEP 17a). 



-17- 



RWQnnrin <(5B 2350021 A 



Here, if the authentication process results in "OK", the control circuit 14 
compares the memory ID received from the reader/writer 1 with the memory ED 
stored in the memory area 18-1 to check whether they coincide or not (STEP 18a), 
and then the operation flow proceeds, if the two memory IDs coincide, to STEP 20a 
5 and, otherwise, to STEP 19a. On the other hand, if the authentication process in 
STEP 17a results in "NG", or if the two memory IDs do not coincide in STEP 18a, 
the authentication signal Rc3 detected by the control circuit 14 is fed to the 
calculation circuit 16. In this case, the calculation circuit 16 produces an 
authentication signal Rc4 = f2(Rc3) (STEP 19a), and then the operation flow 

10 proceeds to STEP 20a. 

When the operation flow, on completion of the operation in STEP 18a or 19a, 
proceeds to STEP 20a, the control circuit 14 produces, if the authentication process 
results in "OK", a response signal R2 for notifying the reader/writer 1 that 
communication is possible or, if the authentication process results in "NG", a 

15 response signal R2a to which the authentication signal Rc4 and the user ID EDla 
are added, and feeds the produced signal to the reader/writer 1. Here, since the 
authentication signal Rc3 = fl(Rc2), and the memory ED received from the 
reader/writer 1 is IDlb and thus coincides with the memory ID of the memory area 
18-1, the response signal R2 for notifying the reader/writer 1 that communication is 

20 possible is transmitted in STEP 21a« 

When the reader/writer 1 receives the response signal R2, the control circuit 
6, on the basis of the response signal R2, permits access to the memory area 18-1 
within the IC card 31, and recognizes that communication is now possible {STEP 
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22 a, It is to be noted that, Urs, as in the first embodiment. when the reader/writer 
t receives the response signs! R2a, the reader/writer a, the confer 2, and the IC 
card 31 repeat the operations starting with STEP 8a. 

Here it is assumed that the reader/writer 1 has received the response signal 
. R2 and therefore the control circuit 6 men makes the main control circuit 9 of the 
controller 2 recognize that communication is now possible with the !C card 31 
(STEP 23a). On recognizing mat communication is possible with the IC card 31, 
me controUer 2 communicates with the ,C card 31 through the reader/writer 1. and, 

10 (STEP 24a). 

jn both of the first and second embodiments, if authentication processes are 
performed a plurality of times between the reader/writer and the !C card and no 
authentication resuits, then an error message is transmitted to the controller and 
communication is terminated. Similarly, if verification of an ID number is 
15 performed a plurality of times in the !C card or in the controller and the ID rs 
found to be coincident with none stored, then an error message is transmitted to 
me controUer and communication is terminated. 

Next, a third embodiment of the present invention will be described with 
re ,e re nce to the drawings relevant thereto. Fig. 10 is a block diagram showing the 
» configuration o, the communications system of mis embodiment. In me 
conjunctions system of mis embodiment, the reader/writer and the controller 
shown in Fig. 10 have the same internal configuration as the reader/writer 1 and 
ft. controller 2 in the communications system shown in Fig. 1. Moreover, in the 
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block constituting the IC card in Fig. 10, such elements as are found also in the IC 
card 3 in the communications system shown in Fig. 1 are identified with the same 
reference numerals and symbols, and their detailed descriptions will not be 
repeated; 

5 The IC card 32 shown in Fig. 10 has a memory 19 divided into memory areas 

19-1 to 19-3, a tuning circuit 11, a rectifier circuit 12, a modulation/demodulation 
circuit 13, a control circuit 14, an authentication circuit IS, and a calculation 
circuit 16. This IC card 32, like the IC card 3 in the first embodiment, can 

; communicate with a plurality of reader/writers managed individually by different 
10 providers Cl, C2, and C3, and thus has its memory 19 divided into memory areas 
19-1 to 19-3 that are allocated for access from the individual providers Cl, C2, and 
C3. 

For example, the provider Cl handles the IC card 32 as a prepaid card for 
storing a count of points representing an amount of money, and the IC card 32 

15 incorporates, within its memory 19, a down counter (not shown) in which the 
count of points is stored in the form of a number of bits so as to be decreased 
according as the points are used. This down counter is initialized by a reset 
signal fed from the control circuit 14. Now, suppose that the IC card 32 is brought 
close to the reader/writer 50 managed by the provider Cl, and, as the result of the 

20 authentication processes as performed in the first or second embodiments, the 
reader/writer 50 and the IC card 32 authenticate each other and access to the 
memory area 19-1 is permitted, making it possible for the controller 51 and the IC 
card 32 to communicate with each other through the reader/writer SO. 
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Now, a description will be given of how this system works when the user D 
„ f .he IC card 32 uses the 1C card 32 to pay bills, for example, at a gas station. 
w the data of the number of remaining points for the user D stored in the 
m emory (not shown, provided within the controller .1 is added to a command 
, signal requesting the reading o, me number of bits stored in the down counter, and 
Uus command signal is transmitted from the controller 51 through «■» 
reader/writer 50 to the IC card 32. Here, the — r 51 calculates the number 
o, remaining points for the user D after me payment, and stores the result in the 

main control circuit (not shown). 

When the IC card 32 receives mis command signal, the control circuit 14 
feeds the memory area 10-1 with a signal requesting the down counter to be 
enabled to be read. When the memory area 19-1 receives mis signal, the down 

8to red therein. Moreover, the control circuit 14 compares the number of 
« remaining points for the user D stored in me memory within the confer 51 and 
added to the command signal with the number of points detected from a response 
signal to check whether they coincide or not. If me two numbers coincide, the 
control circuit 14 transmits through the reader/writer 50 to the controller 51 a 
response signal indicating the coincidence of the two numbers. 

When the controller 51 receives mis response signal, it transmits through 
the reader/writer 50 to the IC card 32 a command signal requesting the number of 
bi ts stored in the down counter to be decreased by the number of M. 
corresponding to the bill to be paid. Here, me controller 51 calculates the number 
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of remaining points for the user D after the payment, and stores the result in the 
main control circuit (not shown). When the IC card 32 receives this command 
signal, the control circuit 14 feeds the memory area 19-1 with a signal requesting 
the down counter to be enabled to be written. When the memory area 19-1 
5 receives this signal, the down counter is enabled to be written, and the number of 
bits stored in the down counter is decreased by the number of bits detected from 

the command signal. 

When some of the remaining points are deleted in this way, the control 
circuit 14 calculates the number of bits stored in the down counter after the 

10 deletion, and a response signal to which the data of the number of points 
corresponding to that number of bits is added is transmitted through the 
reader/writer 50 to the controller 51. The controller 51 compares the number of 
points stored in the main control circuit with the number of points detected from 
the response signal, and, when they coincide, it transmits a command signal 

15 indicating the coincidence of the two numbers to the IC card 32, and stores this 
number in the memory of the controller 51. Then, the controller 51 terminates 
communication. 

Next, a description will be given of how this system works when, after the 
IC card 32 and the reader/writer 50 have authenticated each other to make it 
20 possible for them to communicate with each other, the user D deposits money to 
increase the number of remaining points. First, the data of the number of 
remaining points for the user D stored in the memory provided within the 
controller 51 is added to a command signal requesting the reading of the number of 
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bits stored in the do^ counter, and *is " — — *"» ^ 

contoUer 51 through the reader/writer 50 to the IC card 32. 

When the IC card 32 receives this command signa,. the con.ro. circuit 14 
feeds the memorv area 1« win, a signa, reuuesting .he down counter to be 
5 enabled .o be read. 

store d therein. Moreover, the con.ro, circuit 14 compares the number of 
remains points for the user D stored in the memory within - confer 51 and 
added to the command signa. with the number of points detected from a response 
10 signa. to check whether they coincide or not. If the two numbers coincide, the 
control circuit 14 transmits through the reader/writer 50 * the controller =1 a 
.espouse signal indicating O. coincidence of the two numbers. 

When the controller 51 receives .his response signal, it transmits through 
reader/writer 50 to *. IC card 32 a command signal recasting tie number of 
„ bits s.ored in *. down counter to be changed «o a number corresponding to U» 
numberofpointsafter^edepositingofmone, Here, ti,e confer 51 calcuUtes 
*. number of remaining point, for the user D after the depositing, and stores the 
re sult in tie main control circuit When the IC card 32 receives this command 

20 to down counter to be enabled to be written. When me memorv area 10-1 
receives this signal, the down counter is enabled to be written. Thereafter, the 
control circuit 14 first feeds the down counter with a reset signa, to initials it, 
and men decreases the number of bits stored in the down counter until it becomes 
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equal to the number of bits detected from the command signal. 

When the number of remaining points is changed in this way, the control 
circuit 14 calculates the number of bits stored in the down counter after the change, 
and a response signal to which the data of the number of points corresponding to 
that number of bits is added is transmitted through the reader/writer 50 to the 
controller 51. The controller 51 compares the number of points stored in the 
main control circuit with the number of points detected from the response signal, 
and, when they coincide, it transmits a command signal indicating the coincidence 
of the two numbers to the IC card 32, and stores this number in the memory of the 
controller 51. Then, the controller 51 terminates communication. 

The embodiments described above all deal with transponders for data 
communication, such as IC cards, that achieve communication on a non-contact 
basis. However, the present invention is applicable also to transponders for data 
communication that achieve communication on a wired (i.e. direct-contact) basis. 
In that case, instead of using tuning circuits as are used in the first to third 
embodiments to exchange signals, input/output interfaces are provided in the 
transponder and the interrogator to allow them to communicate with each other. 

According to the present invention, in a transponder for data 
communication, key signals that are used to permit the use of storage areas are 
determined so as to be unique to the transponder so that the use of the storage 
areas will be permitted on the basis of those key signals. By the use of this 
transponder for data communication, it is possible to build a communications 
system that offers higher security. Moreover, this transponder for data 

-24- 



23S0021A I > 



communication is provided with an authentication circuit for producing a signal 
requesting an interrogator to permit communication therewith, and therefore no 
communication is possible unless the interrogator authenticates the transponder. 
Thus, it is possible to realize a communications system that offers higher security. 
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What is claimed is: 

1. A transponder for data communication, comprising: 
a plurality of storage areas for storing data used when the transponder 
communicates individually with a plurality of interrogators managed by different 
5 parties; 

a plurality of key signals, unique to the transponder and stored one for each 
of the storage areas, for permitting use of only a particular storage area 
corresponding to an interrogator with which the transponder is currently 
communicating, 

10 wherein the transponder, when communicating with an interrogator, checks 

a key signal received from the interrogator against the key signals stored in the 
transponder and, when the received key signal coincides with one of the stored key 
signals, the transponder is permitted to communicate with the interrogator by 
using only a particular storage area corresponding to that interrogator. 



15 



2. A transponder for data communication as claimed in claim l. further 



comprising: 

an authentication circuit for generating a signal that is transmitted to the 
interrogator in order to request the interrogator to permit communication. 

20 

3. A transponder for data communication as claimed in claim 1, further 
comprising: 

an authentication circuit for detecting a signal that is transmitted from the 
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interrogator in order to request the transponder to permit communication, for 
checking whether the interior is authentic or not on a basis o f the detected 
signal, and for permitting communication if the interrogator is found to be 

authentic 

4 . A transponder for data communication as claimed in claim 1. further 

comprising: 

. calculation circuit for performing a predetermined calculation operation 
on a signal added to a command signal transmitted from the interrogator in order 
a „ to request the transponder to permit communication and for adding a resulting 
signal to a response signal mat is transmitted back to the interrogator, and 

a n authentication circuit for checking whether the interrogator Is authenhc 
or not on a basis of the signal added to the command signal transmitted from the 
interrogator in order to request the transponder to permit communication, 

wherein the signal obtained through the predetermined emulation 
operation performed by the calculation circuit so as to be added to the response 
signal is used as a signal on a basis of which the interrogator checks whether the 
transponder is authentic or not 



20 



S A transponder for data communication as claimed in claim 1, 
wherein a, least one of the storage areas is composed of a count storage 
member in which a count is stored that is updated in response to a count updating 
command transmitted from the interrogator when the transponder communicates 
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with the interrogator by using that storage area. 



6. A transponder for data communication as claimed in claim 5, further 
comprising: 

an authentication circuit for generating a signal that is transmitted to the 
interrogator in order to request the interrogator to permit communication. 

7. A transponder for data communication as claimed in claim 5, further 
comprising: 

an authentication circuit for detecting a signal that is transmitted from the 
interrogator in order to request the transponder to permit communication, for 
checking whether the interrogator is authentic or not on a basis of the detected 
signal, and for permitting communication if the interrogator is found to be 
authentic. 

8. A transponder for data communication as claimed in claim 5, further 
comprising: 

a calculation circuit for performing a predetermined calculation operation 
on a signal added to a command signal transmitted from the interrogator in order 
to request the transponder to permit communication and for adding a resulting 
signal to a response signal that is transmitted back to the interrogator; and 

an authentication circuit for checking whether the interrogator is authentic 
or not on a basis of the signal added to the command signal transmitted from the 
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interrogator in order to requests transude, .^»— • 

wherein the signal obtained through the predetermined "on 
operation performed by the — n circuit so as to he added to the response 
s i 6 nal is used as a signal on a hasis of which the interrogator checks whether the 
transponder is authentic or not. 

9 A non-contact communications system, comprising: 
. plurality of interrogator, that are managed by different parties-, and 
. transponder for data communication having a plurality of storage areas for 
0 storing da, used when the transponder communicates individually with the 
interrogators and a plurality of key signals, unique to the transponder and stored 
one for eachof the storage areas, for permitting use of only a particular storage area 
corresponding to an interrogator with which the transponder is currently 
communicating, 

wherein the transponder, when communicating with an interrogator on a 
non-contact basis, checks a key signal received from me interrogator against ^ 
tey signals stored in the transponder end, when the received key signal coincrdea 
one of the stored key signaU. the transponder is permitted to con—te 
^ the interrogator by using only a particular storage area corresponding to that 
20 interrogator. 

U A non-contact communications system as claimed in claim 9. 
serein the transponder further has an authentication circuit for generating 
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a signal that is transmitted to the interrogator in order to request the interrogator to 
permit communication. 

11. A non-contact communications system as claimed in claim 9, 

5 wherein the transponder further has an authentication circuit for detecting a 

signal that is transmitted from the interrogator in order to request the transponder 
to permit communication, for checking whether the interrogator is authentic or not 
on a basis of the detected signal, and for permitting communication if the 
interrogator is found to be authentic. 

10 

12. A non-contact communications system as claimed in claim 9, 
wherein the transponder further has: 

a calculation circuit for performing a predetermined calculation operation 
on a signal added to a command signal transmitted from the interrogator in order 

15 to request the transponder to permit communication and for adding a resulting 
signal to a response signal that is transmitted back to the interrogator; and 

an authentication circuit for checking whether the interrogator is authentic 
or not on a basis of the signal added to the command signal transmitted from the 
interrogator in order to request the transponder to permit communication, 

20 wherein the signal obtained through the predetermined calculation 

operation performed by the calculation circuit so as to be added to the response 
signal is used as a signal on a basis of which the interrogator checks whether the 
transponder is authentic or not. 
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13. A non-contact communications system as claimed in claim 9, 
wherein, in the transponder, at least one of the storage areas is composed of 
a count storage member in which a count is stored that is updated in response to a 
count updating command transmitted from the interrogator when the transponder 
communicates with the interrogator by using that storage area. 
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